[Resource Topic] 2025/2082: Integrating PQC in OpenSSL via Shallow Providers for Cryptographic Agility

Welcome to the resource topic for 2025/2082

Title:
Integrating PQC in OpenSSL via Shallow Providers for Cryptographic Agility

Authors: Akif Mehmood, Nicola Tuveri

Abstract:

The emergence of Cryptographically Relevant Quantum Computers (CRQCs) threatens traditional cryptographic systems, necessitating a transition to Post-Quantum Cryptography (PQC). OpenSSL 3.0 introduced Providers, enabling modular cryptographic integration.
This work presents the concept of a “shallow Provider”, facilitating integration of external implementations, to achieve a higher degree of cryptographic agility.
aurora, which we introduce as an instance of the “shallow Provider” methodology, integrates standardized PQC algorithms in TLS 1.3 for both key establishment and authentication, to support the PQC transition.
It enhances cryptographic agility by allowing OpenSSL to dynamically adapt to evolving PQC standards and the rapidly evolving ecosystem of PQC implementations.

ePrint: https://eprint.iacr.org/2025/2082

See all topics related to this paper.

Feel free to post resources that are related to this paper below.

Example resources include: implementations, explanation materials, talks, slides, links to previous discussions on other websites.

For more information, see the rules for Resource Topics .